Silly Samsung Smart Fridge Can Expose Your Gmail Password
Ah, the Internet Of Things (IoT) - the epitome of "Let's do it because we can!". Once again we see an example of a poorly thought out security approach that leaves Joe user hanging it out over the ragged edge. This time, it's a Samsung Smart Fridge - and while it may be a good fridge...
"Egregiously dumb fridge" does not have the same ring, does it?
"While SSL is in place, the fridge fails to validate the certificate. Hence, hackers who manage to access the network that the fridge is on (perhaps through a de-authentication and fake Wi-Fi access point attack) can Man-In-The-Middle the fridge calendar client and steal Google login credentials from their neighbours, for example."